CVE-1999-1182 — Improper Restriction of Operations within the Bounds of a Memory Buffer in Linux
3 documents3 sources
Severity
7.2HIGHNVD
EPSS
0.1%
top 78.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 17
Latest updateApr 30
Description
Buffer overflow in run-time linkers (1) ld.so or (2) ld-linux.so for Linux systems allows local users to gain privileges by calling a setuid program with a long program name (argv[0]) and forcing ld.so/ld-linux.so to report an error.
CVSS vector
AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0
Affected Packages5 packages
Also affects: Debian Linux 4.0